Exploiting Heartbleed (in 2025)

Поділитися
Вставка
  • Опубліковано 6 лют 2025

КОМЕНТАРІ • 54

  • @CasualProfundity
    @CasualProfundity 24 дні тому +6

    Fantastic work, this is possibly the most succinct yet clear explanation without modding any details
    You’ll have a million subs by 2026

    • @hacktheclown
      @hacktheclown  24 дні тому

      @@CasualProfundity Thanks bro! 🤡

  • @rdmusr
    @rdmusr 25 днів тому +6

    Amazing work. You instantly gained my respect when you started speaking about RFCs.
    I remember at one period of my life where I just got my CCNA, I wanted to go all over the topics but in the deepest level possible. So I started reading RFCs of each main protocol, used libraries like scapy to craft packets, and then tested a server's response to the typical behavior described in the RFCs. By the time I finished reading an RFC, I found myself capable of writting simple tools to attack and exploit that behavior. It's so fun to understand how something works, and then using its rules against it.
    I'm working really hard on my life rn just so I can have enough time on my life to fully dive into these topics again. I will never get enough of this.

    • @hacktheclown
      @hacktheclown  25 днів тому +2

      Thank you sir!
      Yes reading the protocol specs/RFC is one of the ways to get deeper understanding on a topic. Might be intimidating at first but will definitely learn lot of things even by just reading a section of it.
      I like scapy. It really speeds up developing network tooling. I see that it is still the top library for packet manipulation because of 17k+ using it and around 400 contributors. I also have some past videos about network tools.
      Thanks again for dropping by!

    • @0xphk
      @0xphk 21 день тому

      that's short for 'Really F*cking Cool stuff' :D

  • @Astral-kt2lp
    @Astral-kt2lp 26 днів тому +4

    This is my first video on this channel. Subscribed🙌🙌🙌

    • @hacktheclown
      @hacktheclown  26 днів тому

      Awesome! Thank you!

    • @hacktheclown
      @hacktheclown  26 днів тому

      Feel free to browse the past videos. I also create playlist for related videos like exploit development.

  • @davidsussens4478
    @davidsussens4478 4 дні тому

    Many individuals may question what the point is of analyzing a vulnerability and writing an exploit for a vulnerability that happened in 2012. The answer to this is simple: If you can develop the thought processes and skills required to exploit vulnerabilities from the past you will be able to apply those skills and thought processes to analyze and understand new vulnerabilities and exploits and even start finding zero days yourself. This is such a valuable exercise and although it takes time and effort, it is in my opinion the best way to skill yourself up. Very few people are willing to walk this path which makes you what I call a Unicorn, but I applaud you for this video once again and hope to see MANY more videos like this.

    • @hacktheclown
      @hacktheclown  4 дні тому +1

      Thanks for the kinds words dude! Yes I’m always curious how these classic vulnerabilities were discovered and exploited. And yeah this is really a good exercise to improve exploit development and vulnerability research skills. I learned a lot while doing this!
      I have more videos like this when I’m back from vacation. Thanks again!!

  • @mrghost2581
    @mrghost2581 27 днів тому +5

    well done bro i enjoyed it keep going🎉

  • @davidsussens4478
    @davidsussens4478 27 днів тому +2

    Brilliant! Keep posting!

  • @ayoub_2825
    @ayoub_2825 21 день тому

    Good content, keep going bro !

  • @0xphk
    @0xphk 23 дні тому

    Very well done, amazing work, gained a sub

    • @hacktheclown
      @hacktheclown  23 дні тому +1

      @@0xphk thank you!

    • @0xphk
      @0xphk 23 дні тому

      @@hacktheclown this is OT but an older video of yours had some nice electronic music, if you like stuff like it, I could offer you with some mixes of mine, dnb or tech if it's to your liking, just to say thanks

    • @hacktheclown
      @hacktheclown  22 дні тому

      @ Hey bro! Yeah I like those kind of music. Thanks for your offer and yeah I would like to include your music into one of my videos. Feel free to share something to me and I will listen to it.

    • @0xphk
      @0xphk 22 дні тому

      @@hacktheclown Yay, nice to hear! might come in parts, hearthis is dnb only (from deep to rough sh*t), still have to upload stuff from festivals since 2018 on but already plenty there, I hope some is to your liking :)
      p1
      aHR0cHM6Ly9oZWFydGhpcy5hdC9lZHJ1c2tpbgo=

    • @hacktheclown
      @hacktheclown  21 день тому +1

      @ Man those are cool stuffs!

  • @kecoje
    @kecoje 26 днів тому +1

    Great video, I did not know so much about this exploit before.

    • @hacktheclown
      @hacktheclown  26 днів тому

      Indeed. This classic attack is really interesting

  • @aadishm4793
    @aadishm4793 26 днів тому

    Awesome video as always man!
    Great, keep up

  • @MysteryBeastIX
    @MysteryBeastIX 24 дні тому

    The difference in TLS versions between the record layer and handshake is for backwards compatibility with legacy applications/systems
    great video!

    • @hacktheclown
      @hacktheclown  24 дні тому

      Thanks for the info! I realize that as well after recording. Really interesting

  • @LostAdmin
    @LostAdmin 27 днів тому

    As Always, awesome video 🔥

  • @Asbestos-g2o
    @Asbestos-g2o 23 дні тому

    Hella underrated.

  • @t-ree
    @t-ree 25 днів тому +2

    Well, thats some COOL 🐛 I have seen in a while...

  • @harry6930
    @harry6930 24 дні тому

    Goat❤❤

  • @nyanux
    @nyanux 26 днів тому

    I love your content.
    Keep it up!

  • @VapuR8
    @VapuR8 26 днів тому

    Very good music and special effects - I subscribe.

  • @anjanbora7943
    @anjanbora7943 27 днів тому

    Keep posting genius 💘

  • @If_U_Seek_Amy_xo
    @If_U_Seek_Amy_xo 24 дні тому

    Is it me or is this a vibe on the scene with Zuck programming in the social network?

    • @hacktheclown
      @hacktheclown  24 дні тому

      I haven’t watched that but thanks for dropping by!

  • @Beyondlimits_400
    @Beyondlimits_400 22 дні тому

    Hey you should make a video on your neovim configuration. Many of us would be thankful lol

    • @hacktheclown
      @hacktheclown  22 дні тому +1

      @@Beyondlimits_400 yes I will create a separate video about my coding setup 🤡

  • @PikkuKani
    @PikkuKani 25 днів тому

    Good stuff. Brilliant work. I just have one question.
    Song at 11:15? :)

    • @hacktheclown
      @hacktheclown  25 днів тому

      Thank you! Here is the song:
      ua-cam.com/video/FIm7e1Otjys/v-deo.html

  • @saldussapnai3464
    @saldussapnai3464 27 днів тому

    thats some sick stuff right here rescpect

  • @__pain__05
    @__pain__05 14 днів тому +1

    From where should i learn Python for exploit dev ? like i am bit confuse
    can you suggest me a small roadmap somthing

    • @hacktheclown
      @hacktheclown  14 днів тому +1

      Hi bro, I don't think there is really a python roadmap for exploit dev. I just learned python from work then I applied it in doing exploits. But there are good books about exploit dev related to python like "Black Hat Python".

    • @__pain__05
      @__pain__05 14 днів тому +1

      @ Thanks Bro i am already Reading that Book ! Thanks For the Info !!

  • @cefalohabil
    @cefalohabil 20 днів тому

    what IDE are you using look cool for python coding.

    • @hacktheclown
      @hacktheclown  20 днів тому +1

      @@cefalohabil hey bro, I’m just using neovim. My terminal is terminator.

  • @MoveTrueRecords_
    @MoveTrueRecords_ 27 днів тому

    New Sub ❤ 2025

  • @flowentry
    @flowentry 18 днів тому

    Sir, how to install nvim as an code editor

    • @hacktheclown
      @hacktheclown  18 днів тому

      Easy way is via lazy vim.
      www.lazyvim.org/installation

  • @sarundayo
    @sarundayo 26 днів тому

    No clowining around in here 🤌🤌🔥